Get started > Key Concepts > Access Control

Access Control

You can add or remove directory service groups or organization units to a role by associating the distinguished name of the organization unit to the desired role. The authenticated users, who are members of a group or organization unit that is assigned to a role, can perform specific tasks, and can access specific areas of the Cloud Service Management Console. You can assign group or distinguished name of the organization unit to more than one role.